Skip to content

d5fa4lt/ThunderStrikeEDR

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

14 Commits
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

Repository files navigation

ThunderStrike EDR

ThunderStrikeEDR Logo

Introduction

I create this project to Learn Edr Internals and Windows kernel Programming.

πŸš€ Features

It only has one feature right now which is inject a Hook DLL into each process using KAPC. I will add More Features in the future.

⚠️ Caution

This project is under development, so please use it with caution. It is recommended to run it inside a virtual machine to avoid any risks to your main system.

πŸ“ To-Do

  • Implement a memory scanner.
  • Integrate basic logging and alerting system.
  • Integrate ETW / ETW-TI

πŸ“š Resources

About

Simple EDR

Resources

Stars

Watchers

Forks

Languages